Here is my OTL report:
OTL logfile created on: 4/6/2014 9:42:49 PM - Run 2
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Byron\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.16521)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
3.97 Gb Total Physical Memory | 2.21 Gb Available Physical Memory | 55.75% Memory free
7.93 Gb Paging File | 5.87 Gb Available in Paging File | 74.05% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 116.44 Gb Total Space | 48.97 Gb Free Space | 42.06% Space Free | Partition Type: NTFS
Drive D: | 331.01 Gb Total Space | 167.13 Gb Free Space | 50.49% Space Free | Partition Type: NTFS
Computer Name: BYRON-PC | User Name: Byron | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Users\Byron\Downloads\OTL.exe (OldTimer Tools)
PRC - C:\Users\Byron\AppData\Roaming\BitTorrent\BitTorrent.exe (BitTorrent Inc.)
PRC - C:\Program Files\AVAST Software\Avast\avastui.exe (AVAST Software)
PRC - C:\Program Files\AVAST Software\Avast\AvastSvc.exe (AVAST Software)
PRC - C:\Program Files (x86)\Common Files\Research In Motion\Tunnel Manager\tunmgr.exe (Research In Motion Limited)
PRC - C:\Program Files (x86)\Common Files\Research In Motion\Tunnel Manager\mDNSResponder.exe (Apple Inc.)
PRC - C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe (BlackBerry Limited)
PRC - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
PRC - C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe (Apple Inc.)
PRC - C:\Program Files (x86)\Workspace\offSyncService.exe (Starfield Technologies)
PRC - C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation)
PRC - C:\Program Files (x86)\Common Files\PC Tools\sMonitor\StartManSvc.exe (PC Tools)
PRC - C:\Program Files (x86)\Secunia\PSI\psia.exe (Secunia)
PRC - C:\Program Files (x86)\Secunia\PSI\sua.exe (Secunia)
========== Modules (No Company Name) ==========
MOD - C:\Program Files\AVAST Software\Avast\libcef.dll ()
MOD - C:\Users\Byron\AppData\Local\Google\Chrome\Application\33.0.1750.154\PepperFlash\pepflashplayer.dll ()
MOD - C:\Users\Byron\AppData\Local\Google\Chrome\Application\33.0.1750.154\ppgooglenaclpluginchrome.dll ()
MOD - C:\Users\Byron\AppData\Local\Google\Chrome\Application\33.0.1750.154\pdf.dll ()
MOD - C:\Users\Byron\AppData\Local\Google\Chrome\Application\33.0.1750.154\libglesv2.dll ()
MOD - C:\Users\Byron\AppData\Local\Google\Chrome\Application\33.0.1750.154\libegl.dll ()
MOD - C:\Users\Byron\AppData\Local\Google\Chrome\Application\33.0.1750.154\ffmpegsumo.dll ()
MOD - C:\Users\Byron\AppData\Local\Google\Chrome\Application\33.0.1750.154\chrome_elf.dll ()
MOD - C:\Program Files (x86)\Common Files\Apple\Internet Services\zlib1.dll ()
MOD - C:\Program Files (x86)\Common Files\Apple\Internet Services\libxml2.dll ()
MOD - C:\Program Files (x86)\Yahoo!\Messenger\yui.dll ()
========== Services (SafeList) ==========
SRV:64bit: - (avast! Antivirus) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe (AVAST Software)
SRV:64bit: - (IEEtwCollectorService) -- C:\Windows\SysNative\IEEtwCollector.exe (Microsoft Corporation)
SRV:64bit: - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV:64bit: - (UxTuneUp) -- C:\Windows\SysNative\uxtuneup.dll (TuneUp Software)
SRV:64bit: - (ATKGFNEXSrv) -- C:\Program Files\ATKGFNEX\GFNEXSrv.exe ()
SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
SRV - (vToolbarUpdater18.0.0) -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.0.0\ToolbarUpdater.exe (AVG Secure Search)
SRV - (MozillaMaintenance) -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe (Mozilla Foundation)
SRV - (RIM Tunnel Service) -- C:\Program Files (x86)\Common Files\Research In Motion\Tunnel Manager\tunmgr.exe (Research In Motion Limited)
SRV - (RIM MDNS) -- C:\Program Files (x86)\Common Files\Research In Motion\Tunnel Manager\mDNSResponder.exe (Apple Inc.)
SRV - (BlackBerry Device Manager) -- C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe (BlackBerry Limited)
SRV - (AdobeARMservice) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
SRV - (TuneUp.UtilitiesSvc) -- C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe (TuneUp Software)
SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
SRV - (File Backup) -- C:\Program Files (x86)\Workspace\offSyncService.exe (Starfield Technologies)
SRV - (NAUpdate) -- C:\Program Files (x86)\Nero\Update\NASvc.exe (Nero AG)
SRV - (UxTuneUp) -- C:\Windows\SysWOW64\uxtuneup.dll (TuneUp Software)
SRV - (PCToolsSSDMonitorSvc) -- C:\Program Files (x86)\Common Files\PC Tools\sMonitor\StartManSvc.exe (PC Tools)
SRV - (Secunia PSI Agent) -- C:\Program Files (x86)\Secunia\PSI\psia.exe (Secunia)
SRV - (Secunia Update Agent) -- C:\Program Files (x86)\Secunia\PSI\sua.exe (Secunia)
SRV - (ASLDRService) -- C:\Program Files (x86)\ASUS\ATK Hotkey\AsLdrSrv.exe (ASUS)
SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (YahooAUService) -- C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe (Yahoo! Inc.)
========== Driver Services (SafeList) ==========
DRV:64bit: - (aswSnx) -- C:\Windows\SysNative\drivers\aswSnx.sys (AVAST Software)
DRV:64bit: - (aswSP) -- C:\Windows\SysNative\drivers\aswSP.sys (AVAST Software)
DRV:64bit: - (aswVmm) -- C:\Windows\SysNative\drivers\aswVmm.sys ()
DRV:64bit: - (aswRdr) -- C:\Windows\SysNative\drivers\aswRdr2.sys (AVAST Software)
DRV:64bit: - (aswStm) -- C:\Windows\SysNative\drivers\aswStm.sys (AVAST Software)
DRV:64bit: - (aswMonFlt) -- C:\Windows\SysNative\drivers\aswMonFlt.sys (AVAST Software)
DRV:64bit: - (aswRvrt) -- C:\Windows\SysNative\drivers\aswRvrt.sys ()
DRV:64bit: - (avgtp) -- C:\Windows\SysNative\drivers\avgtpx64.sys (AVG Technologies)
DRV:64bit: - (RimUsb) -- C:\Windows\SysNative\drivers\RimUsb_AMD64.sys (BlackBerry Limited)
DRV:64bit: - (Avgdiska) -- C:\Windows\SysNative\drivers\avgdiska.sys (AVG Technologies CZ, s.r.o.)
DRV:64bit: - (Avgldx64) -- C:\Windows\SysNative\drivers\avgldx64.sys (AVG Technologies CZ, s.r.o.)
DRV:64bit: - (Avgloga) -- C:\Windows\SysNative\drivers\avgloga.sys (AVG Technologies CZ, s.r.o.)
DRV:64bit: - (Avgmfx64) -- C:\Windows\SysNative\drivers\avgmfx64.sys (AVG Technologies CZ, s.r.o.)
DRV:64bit: - (rimvndis) -- C:\Windows\SysNative\drivers\rimvndis6_AMD64.sys (Research in Motion Limited)
DRV:64bit: - (usbrndis6) -- C:\Windows\SysNative\drivers\usb80236.sys (Microsoft Corporation)
DRV:64bit: - (USBAAPL64) -- C:\Windows\SysNative\drivers\usbaapl64.sys (Apple, Inc.)
DRV:64bit: - (RimVSerPort) -- C:\Windows\SysNative\drivers\RimSerial_AMD64.sys (Research in Motion Ltd)
DRV:64bit: - (GEARAspiWDM) -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys (GEAR Software Inc.)
DRV:64bit: - (Fs_Rec) -- C:\Windows\SysNative\drivers\fs_rec.sys (Microsoft Corporation)
DRV:64bit: - (athr) -- C:\Windows\SysNative\drivers\athrx.sys (Atheros Communications, Inc.)
DRV:64bit: - (Point64) -- C:\Windows\SysNative\drivers\point64.sys (Microsoft Corporation)
DRV:64bit: - (NuidFltr) -- C:\Windows\SysNative\drivers\nuidfltr.sys (Microsoft Corporation)
DRV:64bit: - (ZTEusbwwan) -- C:\Windows\SysNative\drivers\ZTEusbwwan.sys (ZTE Incorporated)
DRV:64bit: - (dc3d) -- C:\Windows\SysNative\drivers\dc3d.sys (Microsoft Corporation)
DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
DRV:64bit: - (igfx) -- C:\Windows\SysNative\drivers\igdkmd64.sys (Intel Corporation)
DRV:64bit: - (ZTEusbgps) -- C:\Windows\SysNative\drivers\ZTEusbgps.sys (ZTE Incorporated)
DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation)
DRV:64bit: - (PSI) -- C:\Windows\SysNative\drivers\psi_mf.sys (Secunia)
DRV:64bit: - (tmobile_mf691_dc_enum) -- C:\Windows\SysNative\drivers\tmobile_mf691_dc_enum.sys (T-Mobile)
DRV:64bit: - (L1E) -- C:\Windows\SysNative\drivers\L1E62x64.sys (Atheros Communications, Inc.)
DRV:64bit: - (kbfiltr) -- C:\Windows\SysNative\drivers\kbfiltr.sys ( )
DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
DRV:64bit: - (WSDPrintDevice) -- C:\Windows\SysNative\drivers\WSDPrint.sys (Microsoft Corporation)
DRV:64bit: - (StillCam) -- C:\Windows\SysNative\drivers\serscan.sys (Microsoft Corporation)
DRV:64bit: - (ROOTMODEM) -- C:\Windows\SysNative\drivers\rootmdm.sys (Microsoft Corporation)
DRV:64bit: - (VIAHdAudAddService) -- C:\Windows\SysNative\drivers\viahduaa.sys (VIA Technologies, Inc.)
DRV:64bit: - (lullaby) -- C:\Windows\SysNative\drivers\lullaby.sys (Windows ® Win 7 DDK provider)
DRV:64bit: - (ETD) -- C:\Windows\SysNative\drivers\ETD.sys (ELAN Microelectronic Corp.)
DRV:64bit: - (SiSGbeLH) -- C:\Windows\SysNative\drivers\SiSG664.sys (Silicon Integrated Systems Corp.)
DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV:64bit: - (SNP2UVC) -- C:\Windows\SysNative\drivers\snp2uvc.sys ()
DRV:64bit: - (iaStor) -- C:\Windows\SysNative\drivers\iaStor.sys (Intel Corporation)
DRV:64bit: - (AmUStor) -- C:\Windows\SysNative\drivers\AmUStor.sys (Alcor Micro, Corp.)
DRV:64bit: - (MTsensor) -- C:\Windows\SysNative\drivers\ATK64AMD.sys (ASUS)
DRV:64bit: - (WimFltr) -- C:\Windows\SysNative\drivers\WimFltr.sys (Microsoft Corporation)
DRV:64bit: - (ASMMAP64) -- C:\Program Files\ATKGFNEX\ASMMAP64.sys ()
DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {D3245D6C-6383-4823-9EF2-FA463514A51C}
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = A3 B2 34 07 86 1E CC 01 [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\..\SearchScopes,DefaultScope = {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
========== FireFox ==========
FF - prefs.js..browser.search.selectedEngine: "Conduit Search"
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:27.0.1
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_77.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin: C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\18.0.0\\npsitesafety.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.5.1: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6: C:\Program Files (x86)\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Nero.com/KM: C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL (Nero AG)
FF - HKLM\Software\MozillaPlugins\@RIM.com/WebSLLauncher,version=1.0: C:\Program Files (x86)\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll ()
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.1: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.3: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin: C:\Users\Byron\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF - HKCU\Software\MozillaPlugins\@starfield.com/off: C:\Users\Byron\AppData\Roaming\Mozilla\Plugins\npoff.dll ( Starfield Technologies, LLC.)
FF - HKCU\Software\MozillaPlugins\@starfield.com/off64: C:\Users\Byron\AppData\Roaming\Mozilla\Plugins\npoff64.dll ( Starfield Technologies, LLC.)
FF - HKCU\Software\MozillaPlugins\@starfield.com/wbe: C:\Users\Byron\AppData\Roaming\Mozilla\Plugins\npwbe.dll (Starfield Technology, LLC)
FF - HKCU\Software\MozillaPlugins\@starfield.com/wbe64: C:\Users\Byron\AppData\Roaming\Mozilla\Plugins\npwbe64.dll (Starfield Technology, LLC)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Byron\AppData\Local\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Byron\AppData\Local\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\facebook.com/fbDesktopPlugin: C:\Users\Byron\AppData\Local\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll (Facebook, Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\avg@toolbar: C:\ProgramData\AVG Secure Search\FireFoxExt\18.0.0.248 [2014/03/03 14:13:43 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2014/03/15 18:08:08 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 27.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2014/03/02 01:40:40 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 27.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2014/03/02 01:40:41 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 27.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2014/03/02 01:40:40 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 27.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2014/03/02 01:40:41 | 000,000,000 | ---D | M]
[2011/06/14 09:10:26 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Byron\AppData\Roaming\Mozilla\Extensions
[2014/03/02 00:01:12 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Byron\AppData\Roaming\Mozilla\Firefox\Profiles\lbefp8bo.default\extensions
[2014/03/31 05:41:41 | 000,000,861 | ---- | M] () -- C:\Users\Byron\AppData\Roaming\Mozilla\Firefox\Profiles\lbefp8bo.default\searchplugins\conduit-search.xml
[2014/03/02 01:40:40 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2014/03/02 01:40:49 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter},
CHR - plugin: Error reading preferences file
CHR - Extension: avast! Online Security = C:\Users\Byron\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2016.82_0\
CHR - Extension: Google Wallet = C:\Users\Byron\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_1\
O1 HOSTS File: ([2014/01/02 21:03:09 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2:64bit: - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2:64bit: - BHO: (no name) - {93DBF2BB-A2B3-4683-A92E-57E60751F346} - No CLSID value found.
O2:64bit: - BHO: (no name) - {D3D233D5-9F6D-436C-B6C7-E63F77503B30} - No CLSID value found.
O2 - BHO: (Java Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\18.0.0.248\AVG Secure Search_toolbar.dll (AVG Secure Search)
O2 - BHO: (Java Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3:64bit: - HKLM\..\Toolbar: (avast! Online Security) - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O3:64bit: - HKLM\..\Toolbar: (no name) - {D7E97865-918F-41E4-9CD0-25AB1C574CE8} - No CLSID value found.
O3 - HKLM\..\Toolbar: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\18.0.0.248\AVG Secure Search_toolbar.dll (AVG Secure Search)
O3 - HKLM\..\Toolbar: (avast! Online Security) - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4 - HKLM..\Run: [AvastUI.exe] C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software)
O4 - HKCU..\Run: [BackgroundContainer] C:\Users\Byron\AppData\Local\Conduit\BackgroundContainer\BackgroundContainer.dll (Conduit Ltd.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll File not found
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{46EDC8B3-83DB-45A5-9391-D954A6ADFF95}: DhcpNameServer = 192.168.1.254
O18:64bit: - Protocol\Handler\inbox - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\viprotocol - No CLSID value found
O18 - Protocol\Handler\inbox - No CLSID value found
O18 - Protocol\Handler\viprotocol {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.0.0\ViProtocol.dll (AVG Secure Search)
O20:64bit: - AppInit_DLLs: (C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll) - File not found
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O27:64bit: - HKLM IFEO\alu.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe (TuneUp Software)
O27:64bit: - HKLM IFEO\backache.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe (TuneUp Software)
O27:64bit: - HKLM IFEO\backbone.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe (TuneUp Software)
O27:64bit: - HKLM IFEO\controldeck.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe (TuneUp Software)
O27:64bit: - HKLM IFEO\facebookmessenger.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe (TuneUp Software)
O27:64bit: - HKLM IFEO\facemgr.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe (TuneUp Software)
O27:64bit: - HKLM IFEO\icloud.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe (TuneUp Software)
O27:64bit: - HKLM IFEO\icloudweb.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe (TuneUp Software)
O27:64bit: - HKLM IFEO\logonmgr.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe (TuneUp Software)
O27:64bit: - HKLM IFEO\p4gxui.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe (TuneUp Software)
O27:64bit: - HKLM IFEO\shellstreamsshortcut.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\alu.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\backache.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\backbone.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\controldeck.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\facebookmessenger.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\facemgr.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\icloud.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\icloudweb.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\logonmgr.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\p4gxui.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\shellstreamsshortcut.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe (TuneUp Software)
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
NetSvcs:64bit: UxTuneUp - C:\Windows\SysNative\uxtuneup.dll (TuneUp Software)
Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
CREATERESTOREPOINT
System Restore Service not available.
========== Files/Folders - Created Within 30 Days ==========
[2014/04/01 15:23:05 | 000,000,000 | ---D | C] -- C:\Users\Byron\Desktop\Internet is extremely slow - Browsers, Internet and email_files
[2014/03/30 17:12:07 | 000,000,000 | ---D | C] -- C:\Users\Byron\Desktop\Tools in Spanish
[2014/03/21 18:11:47 | 000,772,504 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\npDeployJava1.dll
[2014/03/21 18:11:47 | 000,687,504 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\deployJava1.dll
[2014/03/21 14:17:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VS Revo Group
[2014/03/21 14:17:01 | 000,000,000 | ---D | C] -- C:\Users\Byron\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
[2014/03/21 14:16:33 | 000,000,000 | ---D | C] -- C:\Users\Byron\AppData\Local\SearchProtect
[2014/03/19 20:19:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
[2014/03/18 23:21:14 | 000,000,000 | ---D | C] -- C:\Users\Byron\AppData\Roaming\Optimizer Pro
[2014/03/18 23:21:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Optimizer Pro
[2014/03/18 13:15:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014
[2014/03/18 13:14:14 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\TuneUp Utilities 2014
[2014/03/18 13:11:11 | 000,000,000 | -HSD | C] -- C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
[2014/03/18 12:53:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Logs
[2014/03/18 12:13:39 | 000,000,000 | ---D | C] -- C:\Users\Byron\AppData\Roaming\Nero
[2014/03/18 12:03:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero
[2014/03/18 12:03:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Nero
[2014/03/18 02:02:23 | 000,000,000 | ---D | C] -- C:\Users\Byron\Documents\Optimizer Pro
[2014/03/18 01:57:06 | 000,000,000 | ---D | C] -- C:\Users\Byron\AppData\Roaming\IObit
[2014/03/18 01:57:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Evonsoft Computer Repair
[2014/03/18 01:57:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Evonsoft Computer Repair
[2014/03/17 20:34:15 | 000,000,000 | ---D | C] -- C:\Users\Byron\AppData\Roaming\Ahead
[2014/03/16 22:13:34 | 000,344,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msvcr70.dll
[2014/03/16 22:13:31 | 000,089,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\VB5DB.DLL
[2014/03/15 18:09:04 | 000,000,000 | ---D | C] -- C:\Users\Byron\AppData\Roaming\AVAST Software
[2014/03/15 18:08:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast
[2014/03/15 18:08:15 | 000,080,184 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswStm.sys
[2014/03/15 18:08:13 | 001,038,072 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSnx.sys
[2014/03/15 18:08:13 | 000,421,704 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSP.sys
[2014/03/15 18:08:13 | 000,092,544 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr2.sys
[2014/03/15 18:08:13 | 000,078,648 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2014/03/15 18:08:11 | 000,334,136 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2014/03/15 18:08:06 | 000,043,152 | ---- | C] (AVAST Software) -- C:\Windows\avastSS.scr
[2014/03/15 18:07:41 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[2014/03/15 18:06:54 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software
[2014/03/13 00:54:17 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2014/03/13 00:54:17 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll
[2014/03/13 00:54:16 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll
[2014/03/13 00:54:14 | 001,964,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2014/03/13 00:54:14 | 000,553,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll
[2014/03/13 00:54:14 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2014/03/13 00:54:14 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll
[2014/03/13 00:54:14 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2014/03/13 00:54:13 | 000,627,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2014/03/13 00:54:13 | 000,440,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2014/03/13 00:54:12 | 000,218,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2014/03/13 00:54:11 | 002,041,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2014/03/13 00:54:11 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2014/03/13 00:54:10 | 000,703,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2014/03/13 00:54:10 | 000,112,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2014/03/13 00:54:09 | 000,164,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2014/03/13 00:54:09 | 000,111,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe
[2014/03/13 00:54:08 | 000,574,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2014/03/13 00:54:07 | 005,768,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2014/03/13 00:54:07 | 000,708,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
[2014/03/13 00:54:07 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2014/03/13 00:54:06 | 000,817,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2014/03/13 00:54:05 | 000,940,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
[2014/03/13 00:54:05 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
[2014/03/13 00:51:05 | 000,484,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wer.dll
[2014/03/13 00:51:05 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wer.dll
[2014/03/13 00:45:56 | 001,424,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecs.dll
[2014/03/13 00:45:56 | 000,624,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qedit.dll
[2014/03/13 00:45:56 | 000,509,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qedit.dll
[2014/03/12 08:45:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
[2014/03/12 08:17:08 | 005,777,288 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerInstaller.exe
[2014/03/07 23:51:57 | 000,000,000 | ---D | C] -- C:\Users\Byron\Documents\Nero Home
[2014/03/07 23:23:53 | 000,000,000 | ---D | C] -- C:\Users\Byron\AppData\Local\Ahead
[2014/03/07 23:06:47 | 002,388,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_30.dll
[2014/03/07 23:06:47 | 002,323,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_28.dll
[2014/03/07 22:37:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlackBerry
[2008/08/11 22:45:20 | 000,155,648 | ---- | C] (ASUS) -- C:\Program Files (x86)\Common Files\MSIactionall.dll
========== Files - Modified Within 30 Days ==========
[2014/04/06 21:17:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014/04/04 11:01:02 | 000,010,240 | ---- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014/04/04 11:01:02 | 000,010,240 | ---- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014/04/04 10:53:38 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014/04/03 00:06:01 | 000,000,875 | ---- | M] () -- C:\Users\Byron\Desktop\BitTorrent.lnk
[2014/04/03 00:06:01 | 000,000,855 | ---- | M] () -- C:\Users\Byron\Application Data\Microsoft\Internet Explorer\Quick Launch\BitTorrent.lnk
[2014/04/01 15:23:05 | 000,225,686 | ---- | M] () -- C:\Users\Byron\Desktop\Internet is extremely slow - Browsers, Internet and email.htm
[2014/03/30 23:40:33 | 000,422,256 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2014/03/30 21:01:30 | 002,409,046 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2014/03/30 21:01:30 | 000,731,358 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2014/03/30 21:01:30 | 000,006,522 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2014/03/29 02:03:52 | 028,708,780 | ---- | M] () -- C:\Users\Byron\Desktop\Prosperity_II.mp3
[2014/03/29 02:00:25 | 028,680,359 | ---- | M] () -- C:\Users\Byron\Desktop\Prosperity_I.mp3
[2014/03/25 19:55:57 | 008,407,552 | ---- | M] () -- C:\Users\Byron\Desktop\Powerpoint Presentation 2.pps
[2014/03/22 20:15:27 | 000,089,846 | ---- | M] () -- C:\Users\Byron\Desktop\rolex-rose-gold-president.jpg
[2014/03/20 22:49:07 | 000,000,908 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3700817450-263443993-1340972289-1000UA.job
[2014/03/20 22:49:07 | 000,000,856 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3700817450-263443993-1340972289-1000Core.job
[2014/03/20 22:28:22 | 000,000,928 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3700817450-263443993-1340972289-1000UA.job
[2014/03/20 22:28:22 | 000,000,906 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3700817450-263443993-1340972289-1000Core.job
[2014/03/20 08:06:17 | 000,129,829 | ---- | M] () -- C:\Users\Byron\Desktop\2015-bentley-continental-gt-speed-coupe-photo-578362-s-1280x782.jpg
[2014/03/19 20:37:10 | 001,784,242 | ---- | M] () -- C:\Users\Byron\Desktop\Customer Appreciation.pdf
[2014/03/18 21:44:53 | 000,000,896 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014/03/18 21:44:53 | 000,000,892 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014/03/18 13:15:09 | 000,002,211 | ---- | M] () -- C:\Users\Public\Desktop\TuneUp 1-Click Maintenance.lnk
[2014/03/18 13:15:09 | 000,002,185 | ---- | M] () -- C:\Users\Public\Desktop\TuneUp Utilities 2014.lnk
[2014/03/17 15:11:54 | 000,175,358 | ---- | M] () -- C:\Users\Byron\Desktop\Customer Acquisition.pdf
[2014/03/17 15:04:12 | 002,318,360 | ---- | M] () -- C:\Users\Byron\Desktop\customer-acquisition.pdf
[2014/03/17 07:07:19 | 028,711,643 | ---- | M] () -- C:\Users\Byron\Desktop\Forgiveness_II.mp3
[2014/03/17 07:07:12 | 000,666,948 | ---- | M] () -- C:\Users\Byron\Desktop\ListeningInstructionandScripts.pdf
[2014/03/17 07:07:10 | 028,711,849 | ---- | M] () -- C:\Users\Byron\Desktop\Forgiveness_I.mp3
[2014/03/15 18:08:54 | 000,001,968 | ---- | M] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2014/03/15 18:08:07 | 001,038,072 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSnx.sys
[2014/03/15 18:08:07 | 000,421,704 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSP.sys
[2014/03/15 18:08:07 | 000,334,136 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2014/03/15 18:08:07 | 000,207,904 | ---- | M] () -- C:\Windows\SysNative\drivers\aswVmm.sys
[2014/03/15 18:08:07 | 000,092,544 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr2.sys
[2014/03/15 18:08:07 | 000,080,184 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswStm.sys
[2014/03/15 18:08:07 | 000,078,648 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2014/03/15 18:08:07 | 000,065,776 | ---- | M] () -- C:\Windows\SysNative\drivers\aswRvrt.sys
[2014/03/15 18:08:06 | 000,043,152 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
[2014/03/15 17:17:11 | 000,007,597 | ---- | M] () -- C:\Users\Byron\AppData\Local\Resmon.ResmonCfg
[2014/03/12 08:17:47 | 000,692,616 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2014/03/12 08:17:47 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2014/03/12 08:17:08 | 005,777,288 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerInstaller.exe
[2014/03/08 10:25:53 | 000,001,170 | ---- | M] () -- C:\0
[2014/03/07 22:37:49 | 000,002,227 | ---- | M] () -- C:\Users\Public\Desktop\BlackBerry Link.lnk
========== Files Created - No Company Name ==========
[2014/04/03 00:06:01 | 000,000,875 | ---- | C] () -- C:\Users\Byron\Desktop\BitTorrent.lnk
[2014/04/03 00:06:01 | 000,000,855 | ---- | C] () -- C:\Users\Byron\Application Data\Microsoft\Internet Explorer\Quick Launch\BitTorrent.lnk
[2014/04/01 15:23:03 | 000,225,686 | ---- | C] () -- C:\Users\Byron\Desktop\Internet is extremely slow - Browsers, Internet and email.htm
[2014/03/30 23:40:11 | 000,422,256 | ---- | C] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2014/03/30 21:01:45 | 000,038,548 | ---- | C] () -- C:\Users\Byron\Desktop\Byron Plain.jpg
[2014/03/29 02:03:31 | 028,708,780 | ---- | C] () -- C:\Users\Byron\Desktop\Prosperity_II.mp3
[2014/03/29 02:00:25 | 028,680,359 | ---- | C] () -- C:\Users\Byron\Desktop\Prosperity_I.mp3
[2014/03/25 19:55:36 | 008,407,552 | ---- | C] () -- C:\Users\Byron\Desktop\Powerpoint Presentation 2.pps
[2014/03/22 20:15:26 | 000,089,846 | ---- | C] () -- C:\Users\Byron\Desktop\rolex-rose-gold-president.jpg
[2014/03/20 08:06:17 | 000,129,829 | ---- | C] () -- C:\Users\Byron\Desktop\2015-bentley-continental-gt-speed-coupe-photo-578362-s-1280x782.jpg
[2014/03/19 20:37:09 | 001,784,242 | ---- | C] () -- C:\Users\Byron\Desktop\Customer Appreciation.pdf
[2014/03/19 08:18:25 | 005,827,896 | ---- | C] () -- C:\Users\Byron\Desktop\ChanLineup_Public Viewing.pdf
[2014/03/19 08:18:18 | 003,561,728 | ---- | C] () -- C:\Users\Byron\Desktop\Sales Guide Feb 6 - May 21 (3).pdf
[2014/03/18 13:15:09 | 000,002,211 | ---- | C] () -- C:\Users\Public\Desktop\TuneUp 1-Click Maintenance.lnk
[2014/03/18 13:15:09 | 000,002,197 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014.lnk
[2014/03/18 13:15:09 | 000,002,185 | ---- | C] () -- C:\Users\Public\Desktop\TuneUp Utilities 2014.lnk
[2014/03/17 15:11:53 | 000,175,358 | ---- | C] () -- C:\Users\Byron\Desktop\Customer Acquisition.pdf
[2014/03/17 15:04:12 | 002,318,360 | ---- | C] () -- C:\Users\Byron\Desktop\customer-acquisition.pdf
[2014/03/17 07:07:11 | 000,666,948 | ---- | C] () -- C:\Users\Byron\Desktop\ListeningInstructionandScripts.pdf
[2014/03/17 07:06:47 | 028,711,643 | ---- | C] () -- C:\Users\Byron\Desktop\Forgiveness_II.mp3
[2014/03/17 07:06:37 | 028,711,849 | ---- | C] () -- C:\Users\Byron\Desktop\Forgiveness_I.mp3
[2014/03/15 18:08:54 | 000,001,968 | ---- | C] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2014/03/15 18:08:14 | 000,207,904 | ---- | C] () -- C:\Windows\SysNative\drivers\aswVmm.sys
[2014/03/15 18:08:14 | 000,065,776 | ---- | C] () -- C:\Windows\SysNative\drivers\aswRvrt.sys
[2014/03/07 22:37:49 | 000,002,227 | ---- | C] () -- C:\Users\Public\Desktop\BlackBerry Link.lnk
[2013/12/22 02:45:41 | 000,000,258 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2013/12/15 18:41:31 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\skyx24.sys
[2013/12/15 18:41:31 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\rotw.sys
[2013/09/30 23:43:34 | 000,000,256 | ---- | C] () -- C:\Users\Byron\AppData\Roaming\default.rss
[2013/09/19 00:16:55 | 000,000,093 | ---- | C] () -- C:\Users\Byron\AppData\Roaming\WB.CFG
[2013/09/19 00:16:55 | 000,000,006 | ---- | C] () -- C:\Users\Byron\AppData\Roaming\WBPU-TTL.DAT
[2013/09/18 23:15:25 | 000,000,258 | RHS- | C] () -- C:\Users\Byron\ntuser.pol
[2013/02/12 00:46:09 | 000,000,005 | ---- | C] () -- C:\Users\Byron\AppData\Roaming\mbam.context.scan
[2012/08/20 00:32:25 | 000,744,186 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2012/04/30 18:19:18 | 000,000,300 | ---- | C] () -- C:\Users\Byron\AppData\Roaming\burnaware.ini
[2012/04/30 08:56:28 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\dvdtest10024.dat
[2012/04/17 08:19:54 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2012/04/17 08:19:54 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2012/04/17 08:19:54 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2012/04/17 08:19:54 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2012/04/17 08:19:54 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2011/12/19 23:56:30 | 000,009,908 | -HS- | C] () -- C:\Users\Byron\AppData\Local\811410x6x458s346j352j8tkd0v6
[2011/12/15 01:22:10 | 000,010,348 | -HS- | C] () -- C:\Users\Byron\AppData\Local\k5ne3dx5w3g8lgoeol54uau4jn5g6uu0ml770
[2011/12/15 01:22:10 | 000,010,348 | -HS- | C] () -- C:\ProgramData\k5ne3dx5w3g8lgoeol54uau4jn5g6uu0ml770
[2011/12/11 02:34:58 | 000,012,408 | ---- | C] () -- C:\Users\Byron\AppData\Local\mqfhxd5j5dcs1adb7nby5l851v3b
[2011/12/11 02:34:58 | 000,012,408 | ---- | C] () -- C:\ProgramData\mqfhxd5j5dcs1adb7nby5l851v3b
[2011/06/03 10:48:13 | 000,007,597 | ---- | C] () -- C:\Users\Byron\AppData\Local\Resmon.ResmonCfg
[2011/04/30 01:57:31 | 000,087,040 | ---- | C] () -- C:\Users\Byron\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/04/08 11:31:56 | 000,106,496 | ---- | C] () -- C:\Program Files (x86)\Common Files\CPInstallAction.dll
[2008/05/22 09:35:54 | 000,051,962 | ---- | C] () -- C:\Program Files (x86)\Common Files\banner.jpg
========== ZeroAccess Check ==========
[2012/08/17 01:13:08 | 000,000,000 | ---D | M] -- C:\Windows\Installer\{cbcbd993-506d-96b9-6602-879c2385f055}\L
[2012/08/17 01:13:09 | 000,000,000 | ---D | M] -- C:\Windows\Installer\{cbcbd993-506d-96b9-6602-879c2385f055}\U
[2011/11/16 23:41:18 | 000,000,000 | -HSD | M] -- C:\Windows\SysWOW64\config\systemprofile\AppData\Local\{cbcbd993-506d-96b9-6602-879c2385f055}\L
[2011/11/16 23:41:18 | 000,000,000 | -HSD | M] -- C:\Windows\SysWOW64\config\systemprofile\AppData\Local\{cbcbd993-506d-96b9-6602-879c2385f055}\U
[2009/07/13 21:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013/07/25 19:24:57 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013/07/25 18:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 18:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 05:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 18:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2014/03/01 23:54:43 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\1H1Q
[2012/03/15 02:00:21 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\Acoustica
[2012/08/13 19:33:54 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\Ad-Aware Antivirus
[2013/12/15 15:51:20 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\Anvisoft
[2011/09/02 00:59:44 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\Auslogics
[2014/03/15 18:09:04 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\AVAST Software
[2013/12/15 16:39:21 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\AVG2014
[2014/04/06 21:52:04 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\BitTorrent
[2012/03/11 01:31:49 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\bppenu11
[2013/09/18 23:15:14 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\DigitalSite
[2011/12/06 11:41:41 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\dNNyyxAA0
[2014/03/02 23:45:30 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\DriverCure
[2014/03/31 12:00:47 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\Dropbox
[2012/04/30 08:56:29 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\DVD-Cloner
[2011/11/26 01:26:53 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\EEF2E
[2011/11/26 01:16:32 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\EF33ppnG5aQHd
[2013/11/12 05:32:06 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\EVo4FjY740LHpTDw751wI5L4vV2gn5jV
[2013/08/16 20:30:57 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\FCCEE
[2013/04/21 01:55:53 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\Firetrust
[2014/03/06 17:56:07 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\Five9
[2012/04/30 09:08:35 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\ImgBurn
[2014/03/18 01:57:06 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\IObit
[2011/05/16 00:33:27 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\iolo
[2012/04/18 09:11:35 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\MechCAD
[2012/09/16 15:33:51 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\Nico Mak Computing
[2011/05/18 22:10:44 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\Nuance
[2014/03/18 23:21:14 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\Optimizer Pro
[2011/11/26 00:56:08 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\QdddWK88fRL
[2012/03/19 07:33:24 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\Registry Mechanic
[2013/07/14 00:05:51 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\Research In Motion
[2014/03/02 23:45:29 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\SpeedyPC Software
[2011/11/26 00:56:09 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\SXqqjjYCekIVz
[2013/09/18 23:22:27 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\Systweak
[2014/03/18 13:14:53 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\TuneUp Software
[2014/03/02 13:35:20 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\ValueApps
[2014/03/02 23:57:25 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\WebCam Recorder
[2014/03/02 23:57:28 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\WhiteSmoke
[2011/11/26 00:56:18 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\WPPPNyyxAuvSob3
[2013/07/13 23:57:42 | 000,000,000 | ---D | M] -- C:\Users\Byron\AppData\Roaming\XCPCSync.OEM
========== Purity Check ==========
========== Custom Scans ==========
< %USERPROFILE%\..|smtmp;true;true;true /FP >
< %temp%\smtmp\*.* /s > >
< MD5 for: EXPLORER.ADML >
[2009/07/13 19:30:02 | 000,003,695 | ---- | M] () MD5=7A4C7F3CB156543113596988479CAFCE -- C:\Windows\winsxs\amd64_microsoft-windows-s..ouppolicy.resources_31bf3856ad364e35_6.1.7600.16385_en-us_7ef5713984067904\Explorer.adml
< MD5 for: EXPLORER.ADMX >
[2009/06/10 13:53:55 | 000,003,836 | ---- | M] () MD5=AD131A834808E6AFF4A3918DE05BFCF6 -- C:\Windows\winsxs\amd64_microsoft-windows-shell-grouppolicy_31bf3856ad364e35_6.1.7600.16385_none_71af9b5b0a86e6b7\Explorer.admx
< MD5 for: EXPLORER.EXE >
[2011/02/25 22:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652d\explorer.exe
[2011/02/24 23:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\ERDNT\cache86\explorer.exe
[2011/02/24 23:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\explorer.exe
[2011/02/24 23:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe
[2011/02/25 23:14:34 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=3B69712041F3D63605529BD66DC00C48 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe
[2010/11/20 05:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
[2011/02/24 22:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\SysWOW64\explorer.exe
[2011/02/24 22:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5\explorer.exe
[2010/11/20 06:24:45 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe
< MD5 for: EXPLORER.EXE.MUI >
[2009/07/13 19:26:48 | 000,022,016 | ---- | M] (Microsoft Corporation) MD5=4B87EEFDC8E253F846A7DFB49A8E6C70 -- C:\Windows\en-US\explorer.exe.mui
[2009/07/13 19:26:48 | 000,022,016 | ---- | M] (Microsoft Corporation) MD5=4B87EEFDC8E253F846A7DFB49A8E6C70 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer.resources_31bf3856ad364e35_6.1.7600.16385_en-us_61e778c48d52d19b\explorer.exe.mui
[2009/07/13 19:06:56 | 000,022,016 | ---- | M] (Microsoft Corporation) MD5=B9F4B1CA23D60775736059D72BA48526 -- C:\Windows\SysWOW64\en-US\explorer.exe.mui
[2009/07/13 19:06:56 | 000,022,016 | ---- | M] (Microsoft Corporation) MD5=B9F4B1CA23D60775736059D72BA48526 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer.resources_31bf3856ad364e35_6.1.7600.16385_en-us_6c3c2316c1b39396\explorer.exe.mui
< MD5 for: EXPLORER.ZIP >
[2006/03/06 22:48:08 | 000,020,394 | ---- | M] () MD5=B469409C2B2A33C542190B720E11BD79 -- C:\Program Files (x86)\Microsoft Visual Studio 8\Common7\IDE\VSTA\ItemTemplates\VisualBasic\1033\Explorer.zip
< MD5 for: IEXPLORE.EXE >
[2013/11/12 04:06:45 | 000,804,560 | ---- | M] (Microsoft Corporation) MD5=0685765C0CBE095BA0C6C8790BAE21EF -- C:\Windows\winsxs\amd64_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_11.2.9600.16428_none_7b0d6f67c2d3f97a\iexplore.exe
[2014/03/01 15:02:17 | 000,808,152 | ---- | M] (Microsoft Corporation) MD5=3A3BEA53F039CE2E997A918E26E30B1D -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
[2014/03/01 15:02:17 | 000,808,152 | ---- | M] (Microsoft Corporation) MD5=3A3BEA53F039CE2E997A918E26E30B1D -- C:\Windows\winsxs\wow64_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_11.2.9600.16521_none_8557e945f73c23ff\iexplore.exe
[2014/02/06 15:24:01 | 000,808,152 | ---- | M] (Microsoft Corporation) MD5=4263F6C131E513CEA1AE82B5B81A4E1A -- C:\Windows\winsxs\wow64_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_11.2.9600.16518_none_85564983f73dbe0f\iexplore.exe
[2014/03/01 15:33:45 | 000,806,104 | ---- | M] (Microsoft Corporation) MD5=84BCBFB752B96543307E6602E669A95A -- C:\Program Files\Internet Explorer\iexplore.exe
[2014/03/01 15:33:45 | 000,806,104 | ---- | M] (Microsoft Corporation) MD5=84BCBFB752B96543307E6602E669A95A -- C:\Windows\winsxs\amd64_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_11.2.9600.16521_none_7b033ef3c2db6204\iexplore.exe
[2013/04/04 15:50:32 | 000,218,184 | ---- | M] () MD5=B4C6E3889BB310CA7E974A04EC6E46AC -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\Chameleon\iexplore.exe
[2014/02/06 15:55:10 | 000,806,104 | ---- | M] (Microsoft Corporation) MD5=C6E1178294BDEAB1CACF50427688DF05 -- C:\Windows\winsxs\amd64_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_11.2.9600.16518_none_7b019f31c2dcfc14\iexplore.exe
[2013/11/12 04:06:48 | 000,806,096 | ---- | M] (Microsoft Corporation) MD5=C8A8321292A459B0A17FB39A782A5C74 -- C:\Windows\ERDNT\cache86\iexplore.exe
[2013/11/12 04:06:48 | 000,806,096 | ---- | M] (Microsoft Corporation) MD5=C8A8321292A459B0A17FB39A782A5C74 -- C:\Windows\winsxs\wow64_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_11.2.9600.16428_none_856219b9f734bb75\iexplore.exe
< MD5 for: IEXPLORE.EXE.MUI >
[2013/11/12 04:06:49 | 000,005,120 | ---- | M] (Microsoft Corporation) MD5=0B33787AB6EE3BB5FDB0C7C52E4E06A6 -- C:\Program Files (x86)\Internet Explorer\en-US\iexplore.exe.mui
[2013/11/12 04:06:45 | 000,005,120 | ---- | M] (Microsoft Corporation) MD5=0B33787AB6EE3BB5FDB0C7C52E4E06A6 -- C:\Program Files\Internet Explorer\en-US\iexplore.exe.mui
[2013/11/12 04:06:45 | 000,005,120 | ---- | M] (Microsoft Corporation) MD5=0B33787AB6EE3BB5FDB0C7C52E4E06A6 -- C:\Windows\winsxs\amd64_microsoft-windows-i..-optional.resources_31bf3856ad364e35_11.2.9600.16428_en-us_74ba04defa813a61\iexplore.exe.mui
[2013/11/12 04:06:49 | 000,005,120 | ---- | M] (Microsoft Corporation) MD5=0B33787AB6EE3BB5FDB0C7C52E4E06A6 -- C:\Windows\winsxs\wow64_microsoft-windows-i..-optional.resources_31bf3856ad364e35_11.2.9600.16428_en-us_7f0eaf312ee1fc5c\iexplore.exe.mui
< MD5 for: IEXPLORE.EXE-4B6C9213.PF >
[2014/04/05 08:09:16 | 000,316,782 | ---- | M] () MD5=E16AD51FEDB4A018A588FC7FA895DAFB -- C:\Windows\Prefetch\IEXPLORE.EXE-4B6C9213.pf
< MD5 for: IEXPLORE.EXE-908C99F8.PF >
[2014/04/05 08:09:20 | 000,080,266 | ---- | M] () MD5=C75627F3259018A609E9AC5F924806A1 -- C:\Windows\Prefetch\IEXPLORE.EXE-908C99F8.pf
< MD5 for: SERVICES >
[2009/06/10 14:00:26 | 000,017,463 | ---- | M] () MD5=D9E1A01B480D961B7CF0509D597A92D6 -- C:\Windows\system64\drivers\etc\services
[2009/06/10 14:00:26 | 000,017,463 | ---- | M] () MD5=D9E1A01B480D961B7CF0509D597A92D6 -- C:\Windows\winsxs\amd64_microsoft-windows-w..nfrastructure-other_31bf3856ad364e35_6.1.7600.16385_none_6079f415110c0210\services
< MD5 for: SERVICES.CFG >
[2013/12/18 11:42:40 | 000,558,851 | ---- | M] () MD5=A044715A48D8FADB9366D554F20D3331 -- C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Services\Services.cfg
[2011/06/06 12:55:30 | 000,584,045 | R--- | M] () MD5=B82DD53FA8C260DDD7FDC42182DB816E -- C:\Windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\services.cfg
< MD5 for: SERVICES.EXE >
[2009/07/13 18:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\ERDNT\cache64\services.exe
[2009/07/13 18:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\SysNative\services.exe
[2009/07/13 18:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\system64\services.exe
[2009/07/13 18:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe
< MD5 for: SERVICES.EXE.MUI >
[2009/07/13 19:25:40 | 000,017,408 | ---- | M] (Microsoft Corporation) MD5=6507BF0DC2D1F5F32493C288EAA59277 -- C:\Windows\SysNative\en-US\services.exe.mui
[2009/07/13 19:25:40 | 000,017,408 | ---- | M] (Microsoft Corporation) MD5=6507BF0DC2D1F5F32493C288EAA59277 -- C:\Windows\system64\en-US\services.exe.mui
[2009/07/13 19:25:40 | 000,017,408 | ---- | M] (Microsoft Corporation) MD5=6507BF0DC2D1F5F32493C288EAA59277 -- C:\Windows\winsxs\amd64_microsoft-windows-s..ontroller.resources_31bf3856ad364e35_6.1.7600.16385_en-us_c5f238be3fa63468\services.exe.mui
< MD5 for: SERVICES.LNK >
[2009/07/13 23:54:06 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 23:54:06 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
< MD5 for: SERVICES.MOCHIADS.COM.SOL >
[2012/09/26 01:38:52 | 000,000,427 | ---- | M] () MD5=C2DC82B7C6EB8CF3D29317DDEB712033 -- C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\QHNET3XB\mochiads.com\services.mochiads.com.sol
< MD5 for: SERVICES.MOF >
[2009/06/10 13:44:06 | 000,002,866 | ---- | M] () MD5=26A11C895A7F0B6D32105EBE127D8500 -- C:\Windows\SysNative\wbem\services.mof
[2009/06/10 13:44:06 | 000,002,866 | ---- | M] () MD5=26A11C895A7F0B6D32105EBE127D8500 -- C:\Windows\system64\wbem\services.mof
[2009/06/10 13:44:06 | 000,002,866 | ---- | M] () MD5=26A11C895A7F0B6D32105EBE127D8500 -- C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.mof
< MD5 for: SERVICES.MSC >
[2009/07/13 19:23:30 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\SysNative\en-US\services.msc
[2009/06/10 13:38:36 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\SysNative\services.msc
[2009/07/13 19:23:30 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\system64\en-US\services.msc
[2009/06/10 13:38:36 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\system64\services.msc
[2009/07/13 19:08:50 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\SysWOW64\en-US\services.msc
[2009/06/10 14:21:09 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\SysWOW64\services.msc
[2009/07/13 19:23:30 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\winsxs\amd64_microsoft-windows-s..cessnapin.resources_31bf3856ad364e35_6.1.7600.16385_en-us_003408aa160fce5b\services.msc
[2009/06/10 13:38:36 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\winsxs\amd64_microsoft-windows-servicessnapin_31bf3856ad364e35_6.1.7600.16385_none_2b58d44b5f6beb8a\services.msc
[2009/07/13 19:08:50 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\winsxs\x86_microsoft-windows-s..cessnapin.resources_31bf3856ad364e35_6.1.7600.16385_en-us_a4156d265db25d25\services.msc
[2009/06/10 14:21:09 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\winsxs\x86_microsoft-windows-servicessnapin_31bf3856ad364e35_6.1.7600.16385_none_cf3a38c7a70e7a54\services.msc
< MD5 for: SERVICES.PTXML >
[2009/07/13 13:16:17 | 000,001,061 | ---- | M] () MD5=640D7DD61B1CFA6C96F80F68F78CDFA7 -- C:\Windows\SysNative\wdi\perftrack\Services.ptxml
[2009/07/13 13:16:17 | 000,001,061 | ---- | M] () MD5=640D7DD61B1CFA6C96F80F68F78CDFA7 -- C:\Windows\system64\wdi\perftrack\Services.ptxml
[2009/07/13 13:16:17 | 000,001,061 | ---- | M] () MD5=640D7DD61B1CFA6C96F80F68F78CDFA7 -- C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\Services.ptxml
< MD5 for: SERVICES.TICO >
[2009/09/25 14:00:00 | 000,002,038 | ---- | M] () MD5=D669B1B2EBE288A61680C3C863828D28 -- C:\Program Files (x86)\TuneUp Utilities 2014\data\services.tico
< MD5 for: WINLOGON.ADML >
[2009/07/13 19:25:22 | 000,008,013 | ---- | M] () MD5=CED0EAD8D152B3D0F114698DE2316C5E -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon-adm.resources_31bf3856ad364e35_6.1.7600.16385_en-us_f0f9032ef6930070\WinLogon.adml
< MD5 for: WINLOGON.ADMX >
[2009/06/10 14:04:41 | 000,005,237 | ---- | M] () MD5=89D8F50E186A16C2CED3CF36DBBC0B2C -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon-adm_31bf3856ad364e35_6.1.7600.16385_none_d7024e6992f3424d\WinLogon.admx
< MD5 for: WINLOGON.EXE >
[2010/11/20 06:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\ERDNT\cache64\winlogon.exe
[2010/11/20 06:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\SysNative\winlogon.exe
[2010/11/20 06:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\system64\winlogon.exe
[2010/11/20 06:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2013/04/04 15:50:32 | 000,218,184 | ---- | M] () MD5=B4C6E3889BB310CA7E974A04EC6E46AC -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\Chameleon\winlogon.exe
< MD5 for: WINLOGON.EXE.MUI >
[2010/11/20 06:00:25 | 000,023,040 | ---- | M] (Microsoft Corporation) MD5=34C7D2E30868EDAFB191341D963ABA5F -- C:\Windows\SysNative\en-US\winlogon.exe.mui
[2010/11/20 06:00:25 | 000,023,040 | ---- | M] (Microsoft Corporation) MD5=34C7D2E30868EDAFB191341D963ABA5F -- C:\Windows\system64\en-US\winlogon.exe.mui
[2010/11/20 06:00:25 | 000,023,040 | ---- | M] (Microsoft Corporation) MD5=34C7D2E30868EDAFB191341D963ABA5F -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon.resources_31bf3856ad364e35_6.1.7601.17514_en-us_291e96fa1ab5fc7b\winlogon.exe.mui
< MD5 for: WINLOGON.MFL >
[2009/07/13 19:27:22 | 000,001,080 | ---- | M] () MD5=2783ED50691284F7EAE6BE9729337E1A -- C:\Windows\SysNative\wbem\en-US\winlogon.mfl
[2009/07/13 19:27:22 | 000,001,080 | ---- | M] () MD5=2783ED50691284F7EAE6BE9729337E1A -- C:\Windows\system64\wbem\en-US\winlogon.mfl
[2009/07/13 19:27:22 | 000,001,080 | ---- | M] () MD5=2783ED50691284F7EAE6BE9729337E1A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon-mof.resources_31bf3856ad364e35_6.1.7600.16385_en-us_84afd4fd38ffd276\winlogon.mfl
< MD5 for: WINLOGON.MOF >
[2009/07/13 13:30:01 | 000,003,192 | ---- | M] () MD5=DF722B96F32A61783BC310FACF10240B -- C:\Windows\SysNative\wbem\winlogon.mof
[2009/07/13 13:30:01 | 000,003,192 | ---- | M] () MD5=DF722B96F32A61783BC310FACF10240B -- C:\Windows\system64\wbem\winlogon.mof
[2009/07/13 13:30:01 | 000,003,192 | ---- | M] () MD5=DF722B96F32A61783BC310FACF10240B -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon-mof_31bf3856ad364e35_6.1.7600.16385_none_dc2dbb778f98e40f\winlogon.mof
< %SYSTEMDRIVE%\*.* >
[2014/03/08 10:25:53 | 000,001,170 | ---- | M] () -- C:\0
[2010/11/20 05:40:07 | 000,383,786 | RHS- | M] () -- C:\bootmgr
[2014/04/04 10:53:24 | 4258,357,248 | -HS- | M] () -- C:\pagefile.sys
< %systemroot%\Fonts\*.com >
< %systemroot%\Fonts\*.dll >
< %systemroot%\Fonts\*.ini >
[2009/06/10 13:49:50 | 000,000,065 | ---- | M] () -- C:\Windows\Fonts\desktop.ini
< %systemroot%\Fonts\*.ini2 >
< %systemroot%\Fonts\*.exe >
< %systemroot%\system32\spool\prtprocs\w32x86\*.* >
< %systemroot%\REPAIR\*.bak1 >
< %systemroot%\REPAIR\*.ini >
< %systemroot%\system32\*.jpg >
< %systemroot%\*.jpg >
< %systemroot%\*.png >
< %systemroot%\*.scr >
[2014/03/15 18:08:06 | 000,043,152 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
< %systemroot%\*._sy >
< %APPDATA%\Adobe\Update\*.* >
< %ALLUSERSPROFILE%\Favorites\*.* >
< %APPDATA%\Microsoft\*.* >
< %PROGRAMFILES%\*.* >
[2009/07/13 21:54:24 | 000,000,174 | -HS- | M] () -- C:\Program Files (x86)\desktop.ini
< %APPDATA%\Update\*.* >
< %systemroot%\*. /mp /s >
< dir "%systemdrive%\*" /S /A:L /C >
Volume in drive C is OS
Volume Serial Number is FCCE-EF2E
Directory of C:\
07/13/2009 10:08 PM <JUNCTION> Documents and Settings [C:\Users]
0 File(s) 0 bytes
Directory of C:\ProgramData
07/13/2009 10:08 PM <JUNCTION> Application Data [C:\ProgramData]
07/13/2009 10:08 PM <JUNCTION> Desktop [C:\Users\Public\Desktop]
07/13/2009 10:08 PM <JUNCTION> Documents [C:\Users\Public\Documents]
07/13/2009 10:08 PM <JUNCTION> Favorites [C:\Users\Public\Favorites]
07/13/2009 10:08 PM <JUNCTION> Start Menu [C:\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 10:08 PM <JUNCTION> Templates [C:\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Users
07/13/2009 10:08 PM <SYMLINKD> All Users [C:\ProgramData]
07/13/2009 10:08 PM <JUNCTION> Default User [C:\Users\Default]
0 File(s) 0 bytes
Directory of C:\Users\All Users
07/13/2009 10:08 PM <JUNCTION> Application Data [C:\ProgramData]
07/13/2009 10:08 PM <JUNCTION> Desktop [C:\Users\Public\Desktop]
07/13/2009 10:08 PM <JUNCTION> Documents [C:\Users\Public\Documents]
07/13/2009 10:08 PM <JUNCTION> Favorites [C:\Users\Public\Favorites]
07/13/2009 10:08 PM <JUNCTION> Start Menu [C:\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 10:08 PM <JUNCTION> Templates [C:\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Users\Byron
04/29/2011 07:50 PM <JUNCTION> Application Data [C:\Users\Byron\AppData\Roaming]
04/29/2011 07:50 PM <JUNCTION> Cookies [C:\Users\Byron\AppData\Roaming\Microsoft\Windows\Cookies]
04/29/2011 07:50 PM <JUNCTION> Local Settings [C:\Users\Byron\AppData\Local]
04/29/2011 07:50 PM <JUNCTION> My Documents [C:\Users\Byron\Documents]
04/29/2011 07:50 PM <JUNCTION> NetHood [C:\Users\Byron\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
04/29/2011 07:50 PM <JUNCTION> PrintHood [C:\Users\Byron\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
04/29/2011 07:50 PM <JUNCTION> Recent [C:\Users\Byron\AppData\Roaming\Microsoft\Windows\Recent]
04/29/2011 07:50 PM <JUNCTION> SendTo [C:\Users\Byron\AppData\Roaming\Microsoft\Windows\SendTo]
04/29/2011 07:50 PM <JUNCTION> Start Menu [C:\Users\Byron\AppData\Roaming\Microsoft\Windows\Start Menu]
04/29/2011 07:50 PM <JUNCTION> Templates [C:\Users\Byron\AppData\Roaming\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Users\Byron\AppData\Local
04/29/2011 07:50 PM <JUNCTION> Application Data [C:\Users\Byron\AppData\Local]
04/29/2011 07:50 PM <JUNCTION> History [C:\Users\Byron\AppData\Local\Microsoft\Windows\History]
04/29/2011 07:50 PM <JUNCTION> Temporary Internet Files [C:\Users\Byron\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Users\Byron\Documents
04/29/2011 07:50 PM <JUNCTION> My Music [C:\Users\Byron\Music]
04/29/2011 07:50 PM <JUNCTION> My Pictures [C:\Users\Byron\Pictures]
04/29/2011 07:50 PM <JUNCTION> My Videos [C:\Users\Byron\Videos]
0 File(s) 0 bytes
Directory of C:\Users\Default
07/13/2009 10:08 PM <JUNCTION> Application Data [C:\Users\Default\AppData\Roaming]
07/13/2009 10:08 PM <JUNCTION> Local Settings [C:\Users\Default\AppData\Local]
07/13/2009 10:08 PM <JUNCTION> My Documents [C:\Users\Default\Documents]
07/13/2009 10:08 PM <JUNCTION> NetHood [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
07/13/2009 10:08 PM <JUNCTION> PrintHood [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
07/13/2009 10:08 PM <JUNCTION> Recent [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Recent]
07/13/2009 10:08 PM <JUNCTION> SendTo [C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo]
07/13/2009 10:08 PM <JUNCTION> Start Menu [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu]
07/13/2009 10:08 PM <JUNCTION> Templates [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Users\Default\AppData\Local
07/13/2009 10:08 PM <JUNCTION> Application Data [C:\Users\Default\AppData\Local]
07/13/2009 10:08 PM <JUNCTION> History [C:\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 10:08 PM <JUNCTION> Temporary Internet Files [C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Users\Default\Documents
07/13/2009 10:08 PM <JUNCTION> My Music [C:\Users\Default\Music]
07/13/2009 10:08 PM <JUNCTION> My Pictures [C:\Users\Default\Pictures]
07/13/2009 10:08 PM <JUNCTION> My Videos [C:\Users\Default\Videos]
0 File(s) 0 bytes
Directory of C:\Users\Guest
11/16/2011 05:48 PM <JUNCTION> Application Data [C:\Users\Guest\AppData\Roaming]
11/16/2011 05:48 PM <JUNCTION> Cookies [C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Cookies]
11/16/2011 05:48 PM <JUNCTION> Local Settings [C:\Users\Guest\AppData\Local]
11/16/2011 05:48 PM <JUNCTION> My Documents [C:\Users\Guest\Documents]
11/16/2011 05:48 PM <JUNCTION> NetHood [C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
11/16/2011 05:48 PM <JUNCTION> PrintHood [C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
11/16/2011 05:48 PM <JUNCTION> Recent [C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Recent]
11/16/2011 05:48 PM <JUNCTION> SendTo [C:\Users\Guest\AppData\Roaming\Microsoft\Windows\SendTo]
11/16/2011 05:48 PM <JUNCTION> Start Menu [C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu]
11/16/2011 05:48 PM <JUNCTION> Templates [C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Users\Guest\AppData\Local
11/16/2011 05:48 PM <JUNCTION> Application Data [C:\Users\Guest\AppData\Local]
11/16/2011 05:48 PM <JUNCTION> History [C:\Users\Guest\AppData\Local\Microsoft\Windows\History]
11/16/2011 05:48 PM <JUNCTION> Temporary Internet Files [C:\Users\Guest\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Users\Guest\Documents
11/16/2011 05:48 PM <JUNCTION> My Music [C:\Users\Guest\Music]
11/16/2011 05:48 PM <JUNCTION> My Pictures [C:\Users\Guest\Pictures]
11/16/2011 05:48 PM <JUNCTION> My Videos [C:\Users\Guest\Videos]
0 File(s) 0 bytes
Directory of C:\Users\Public\Documents
07/13/2009 10:08 PM <JUNCTION> My Music [C:\Users\Public\Music]
07/13/2009 10:08 PM <JUNCTION> My Pictures [C:\Users\Public\Pictures]
07/13/2009 10:08 PM <JUNCTION> My Videos [C:\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows
11/26/2011 12:54 AM <JUNCTION> system64 [c:\users]
0 File(s) 0 bytes
Total Files Listed:
0 File(s) 0 bytes
66 Dir(s) 52,578,844,672 bytes free
< %systemroot%\System32\config\*.sav >
< %PROGRAMFILES%\bak. /s >
< %systemroot%\system32\bak. /s >
< %ALLUSERSPROFILE%\Start Menu\*.lnk /x >
< %systemroot%\system32\config\systemprofile\*.dat /x >
< %systemroot%\*.config >
< %systemroot%\system32\*.db >
< %PROGRAMFILES%\Internet Explorer\*.dat >
< %APPDATA%\Microsoft\Internet Explorer\Quick Launch\*.lnk /x >
[2011/12/22 11:32:35 | 000,000,221 | -HS- | M] () -- C:\Users\Byron\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\desktop.ini
< %USERPROFILE%\Desktop\*.exe >
< %PROGRAMFILES%\Common Files\*.* >
[2008/05/22 09:35:54 | 000,051,962 | ---- | M] () -- C:\Program Files (x86)\Common Files\banner.jpg
[2009/04/08 11:31:56 | 000,106,496 | ---- | M] () -- C:\Program Files (x86)\Common Files\CPInstallAction.dll
[2008/08/11 22:45:20 | 000,155,648 | ---- | M] (ASUS) -- C:\Program Files (x86)\Common Files\MSIactionall.dll
< %systemroot%\*.src >
< %systemroot%\install\*.* >
< %systemroot%\system32\DLL\*.* >
< %systemroot%\system32\HelpFiles\*.* >
< %systemroot%\system32\rundll\*.* >
< %systemroot%\winn32\*.* >
< %systemroot%\Java\*.* >
< %systemroot%\system32\test\*.* >
< %systemroot%\system32\Rundll32\*.* >
< %systemroot%\AppPatch\Custom\*.* >
< HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >
< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >
========== Files - Unicode (All) ==========
[2013/11/23 03:46:04 | 105,835,460 | ---- | M] ()(C:\Windows\SysWow64\???¡) -- C:\Windows\SysWow64\붩㍵ὄ¡
[2013/11/23 03:46:04 | 105,835,460 | ---- | C] ()(C:\Windows\SysWow64\???¡) -- C:\Windows\SysWow64\붩㍵ὄ¡
[2013/11/22 14:39:22 | 105,774,717 | ---- | M] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\붭뗌ὄ
[2013/11/21 20:39:37 | 105,774,717 | ---- | C] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\붭뗌ὄ
[2013/11/18 14:39:10 | 104,986,035 | ---- | M] ()(C:\Windows\SysWow64\???) -- C:\Windows\SysWow64\ᅓ⍁ὄ
[2013/11/18 02:39:22 | 104,986,035 | ---- | C] ()(C:\Windows\SysWow64\???) -- C:\Windows\SysWow64\ᅓ⍁ὄ
[2013/11/15 20:39:44 | 104,513,208 | ---- | M] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\稱ⱍὄ
[2013/11/15 20:39:44 | 104,513,208 | ---- | C] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\稱ⱍὄ
[2013/11/15 13:46:09 | 104,496,569 | ---- | M] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\绠ꚁὄ
[2013/11/14 19:46:45 | 104,496,569 | ---- | C] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\绠ꚁὄ
[2013/11/14 07:46:09 | 104,225,154 | ---- | M] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\犊ὄ
[2013/11/14 07:46:09 | 104,225,154 | ---- | C] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\犊ὄ
[2013/11/12 13:26:01 | 103,974,937 | ---- | M] ()(C:\Windows\SysWow64\???d) -- C:\Windows\SysWow64\됴렾ὄd
[2013/11/12 07:25:52 | 103,974,937 | ---- | C] ()(C:\Windows\SysWow64\???d) -- C:\Windows\SysWow64\됴렾ὄd
[2013/11/08 13:26:02 | 103,316,092 | ---- | M] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\희ὄ
[2013/11/08 07:25:30 | 103,316,092 | ---- | C] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\희ὄ
[2013/11/06 01:16:50 | 105,166,163 | ---- | M] ()(C:\Windows\SysWow64\???P) -- C:\Windows\SysWow64\ὄP
[2013/11/05 19:17:01 | 105,166,163 | ---- | C] ()(C:\Windows\SysWow64\???P) -- C:\Windows\SysWow64\ὄP
[2013/11/04 19:17:36 | 105,017,276 | ---- | M] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\ꕘὄ
[2013/11/04 19:17:36 | 105,017,276 | ---- | C] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\ꕘὄ
[2013/11/03 12:13:19 | 104,814,100 | ---- | M] ()(C:\Windows\SysWow64\???a) -- C:\Windows\SysWow64\퐽ꜟὄa
[2013/11/03 06:13:13 | 104,814,100 | ---- | C] ()(C:\Windows\SysWow64\???a) -- C:\Windows\SysWow64\퐽ꜟὄa
[2013/11/02 12:13:12 | 104,684,788 | ---- | M] ()(C:\Windows\SysWow64\???l) -- C:\Windows\SysWow64\쑲ࠁὄl
[2013/11/02 06:13:14 | 104,684,788 | ---- | C] ()(C:\Windows\SysWow64\???l) -- C:\Windows\SysWow64\쑲ࠁὄl
[2013/11/01 12:13:09 | 104,569,497 | ---- | M] ()(C:\Windows\SysWow64\???«) -- C:\Windows\SysWow64\䒟骮ὄ«
[2013/11/01 00:13:20 | 104,569,497 | ---- | C] ()(C:\Windows\SysWow64\???«) -- C:\Windows\SysWow64\䒟骮ὄ«
[2013/10/29 03:16:18 | 103,932,228 | ---- | M] ()(C:\Windows\SysWow64\???9) -- C:\Windows\SysWow64\燾쀧ὄ9
[2013/10/28 03:16:17 | 103,932,228 | ---- | C] ()(C:\Windows\SysWow64\???9) -- C:\Windows\SysWow64\燾쀧ὄ9
[2013/10/25 13:58:28 | 103,054,676 | ---- | M] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\셅㬓ὄ
[2013/10/25 01:58:38 | 103,054,676 | ---- | C] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\셅㬓ὄ
[2013/10/24 08:39:42 | 102,787,172 | ---- | M] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\倭継ὄ
[2013/10/24 08:39:42 | 102,787,172 | ---- | C] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\倭継ὄ
[2013/10/23 20:40:06 | 102,749,940 | ---- | M] ()(C:\Windows\SysWow64\???N) -- C:\Windows\SysWow64\石ὄN
[2013/10/23 20:40:06 | 102,749,940 | ---- | C] ()(C:\Windows\SysWow64\???N) -- C:\Windows\SysWow64\石ὄN
[2013/10/23 12:57:40 | 102,674,996 | ---- | M] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\똓쒢ὄ
[2013/10/21 00:57:38 | 102,674,996 | ---- | C] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\똓쒢ὄ
[2013/10/20 06:57:32 | 102,068,998 | ---- | M] ()(C:\Windows\SysWow64\???±) -- C:\Windows\SysWow64\ꍄ᪑ὄ±
[2013/10/16 18:56:55 | 102,068,998 | ---- | C] ()(C:\Windows\SysWow64\???±) -- C:\Windows\SysWow64\ꍄ᪑ὄ±
[2013/10/16 06:56:57 | 101,406,750 | ---- | M] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\뫑튑ὄ
[2013/10/15 18:57:07 | 101,406,750 | ---- | C] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\뫑튑ὄ
[2013/10/15 12:56:50 | 101,237,240 | ---- | M] ()(C:\Windows\SysWow64\???O) -- C:\Windows\SysWow64\ꌎ꺩ὄO
[2013/10/15 06:57:04 | 101,237,240 | ---- | C] ()(C:\Windows\SysWow64\???O) -- C:\Windows\SysWow64\ꌎ꺩ὄO
[2013/10/14 18:56:58 | 101,076,544 | ---- | M] ()(C:\Windows\SysWow64\???m) -- C:\Windows\SysWow64\偨ὄm
[2013/10/14 18:56:58 | 101,076,544 | ---- | C] ()(C:\Windows\SysWow64\???m) -- C:\Windows\SysWow64\偨ὄm
[2013/10/13 18:57:22 | 100,838,141 | ---- | M] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\㾄眹ὄ
[2013/10/12 06:56:29 | 100,838,141 | ---- | C] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\㾄眹ὄ
[2013/10/10 00:30:08 | 100,221,909 | ---- | M] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\퀣ႇὄ
[2013/10/10 00:30:08 | 100,221,909 | ---- | C] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\퀣ႇὄ
[2013/10/09 09:00:15 | 100,163,860 | ---- | M] ()(C:\Windows\SysWow64\???Y) -- C:\Windows\SysWow64\⾁츳ὄY
[2013/10/09 09:00:15 | 100,163,860 | ---- | C] ()(C:\Windows\SysWow64\???Y) -- C:\Windows\SysWow64\⾁츳ὄY
[2013/10/04 13:05:04 | 099,288,311 | ---- | M] ()(C:\Windows\SysWow64\???7) -- C:\Windows\SysWow64\᱂㡫ὄ7
[2013/10/02 19:04:55 | 099,288,311 | ---- | C] ()(C:\Windows\SysWow64\???7) -- C:\Windows\SysWow64\᱂㡫ὄ7
[2013/10/02 13:05:08 | 098,834,313 | ---- | M] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\亩猐ὄ
[2013/09/30 19:05:09 | 098,834,313 | ---- | C] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\亩猐ὄ
[2013/09/30 12:37:02 | 098,541,442 | ---- | M] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\롏ὄ
[2013/09/30 00:37:06 | 098,541,442 | ---- | C] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\롏ὄ
[2013/09/29 12:37:01 | 098,466,785 | ---- | M] ()(C:\Windows\SysWow64\???) -- C:\Windows\SysWow64\箰ѷὄ
[2013/09/29 06:37:02 | 098,466,785 | ---- | C] ()(C:\Windows\SysWow64\???) -- C:\Windows\SysWow64\箰ѷὄ
[2013/09/27 11:26:18 | 098,286,374 | ---- | M] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\边冑ὄ
[2013/09/27 05:26:25 | 098,286,374 | ---- | C] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\边冑ὄ
[2013/09/26 12:22:41 | 098,009,570 | ---- | M] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\鴵埨ὄ
[2013/09/25 18:22:37 | 098,009,570 | ---- | C] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\鴵埨ὄ
[2013/09/25 12:22:38 | 097,858,179 | ---- | M] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\ꮧὄ
[2013/09/24 18:23:25 | 097,858,179 | ---- | C] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\ꮧὄ
[2013/09/24 09:33:59 | 097,531,747 | ---- | M] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\烱쿉ὄ
[2013/09/23 21:34:25 | 097,531,747 | ---- | C] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\烱쿉ὄ
[2013/09/23 15:33:59 | 098,798,431 | ---- | M] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\ᯌ钹ὄ
[2013/09/21 03:33:49 | 098,798,431 | ---- | C] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\ᯌ钹ὄ
[2013/09/20 12:28:07 | 098,498,750 | ---- | M] ()(C:\Windows\SysWow64\???c) -- C:\Windows\SysWow64\䌋ὄc
[2013/09/19 18:27:59 | 098,498,750 | ---- | C] ()(C:\Windows\SysWow64\???c) -- C:\Windows\SysWow64\䌋ὄc
[2013/09/19 12:27:59 | 098,395,704 | ---- | M] ()(C:\Windows\SysWow64\???C) -- C:\Windows\SysWow64\׆趿ὄC
[2013/09/19 00:28:19 | 098,395,704 | ---- | C] ()(C:\Windows\SysWow64\???C) -- C:\Windows\SysWow64\׆趿ὄC
[2013/09/18 12:27:59 | 098,177,822 | ---- | M] ()(C:\Windows\SysWow64\???¢) -- C:\Windows\SysWow64\틛梻ὄ¢
[2013/09/18 00:28:00 | 098,177,822 | ---- | C] ()(C:\Windows\SysWow64\???¢) -- C:\Windows\SysWow64\틛梻ὄ¢
[2013/09/17 12:23:55 | 098,062,984 | ---- | M] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\揚ὄ
[2013/09/15 12:23:53 | 098,062,984 | ---- | C] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\揚ὄ
[2013/09/14 12:23:47 | 097,600,188 | ---- | M] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\癛圪ὄ
[2013/09/13 18:23:45 | 097,600,188 | ---- | C] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\癛圪ὄ
[2013/09/13 12:23:45 | 097,503,480 | ---- | M] ()(C:\Windows\SysWow64\???) -- C:\Windows\SysWow64\怸‣ὄ
[2013/09/12 18:23:42 | 097,503,480 | ---- | C] ()(C:\Windows\SysWow64\???) -- C:\Windows\SysWow64\怸‣ὄ
[2013/09/12 12:23:42 | 097,373,152 | ---- | M] ()(C:\Windows\SysWow64\???G) -- C:\Windows\SysWow64\োⅾὄG
[2013/09/12 12:23:42 | 097,373,152 | ---- | C] ()(C:\Windows\SysWow64\???G) -- C:\Windows\SysWow64\োⅾὄG
[2013/09/12 00:23:45 | 097,238,077 | ---- | M] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\␦蝇ὄ
[2013/09/11 18:23:42 | 097,238,077 | ---- | C] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\␦蝇ὄ
[2013/09/11 12:23:40 | 097,171,315 | ---- | M] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\鈵䯺ὄ
[2013/09/11 00:23:46 | 097,171,315 | ---- | C] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\鈵䯺ὄ
[2013/09/10 09:49:35 | 096,985,259 | ---- | M] ()(C:\Windows\SysWow64\???¨) -- C:\Windows\SysWow64\環ὄ¨
[2013/09/09 21:48:57 | 096,985,259 | ---- | C] ()(C:\Windows\SysWow64\???¨) -- C:\Windows\SysWow64\環ὄ¨
[2013/09/06 21:07:02 | 096,496,803 | ---- | M] ()(C:\Windows\SysWow64\???H) -- C:\Windows\SysWow64\ꨅフḼH
[2013/09/06 21:07:02 | 096,496,803 | ---- | C] ()(C:\Windows\SysWow64\???H) -- C:\Windows\SysWow64\ꨅフḼH
[2013/09/06 07:05:58 | 096,334,488 | ---- | M] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\䡿Ḽ
[2013/09/05 18:43:30 | 096,334,488 | ---- | C] ()(C:\Windows\SysWow64\????) -- C:\Windows\SysWow64\䡿Ḽ
[2013/09/04 07:53:42 | 095,863,165 | ---- | M] ()(C:\Windows\SysWow64\???F) -- C:\Windows\SysWow64\믾❫ḼF
[2013/09/04 07:53:42 | 095,863,165 | ---- | C] ()(C:\Windows\SysWow64\???F) -- C:\Windows\SysWow64\믾❫ḼF
========== Hard Links - Junction Points - Mount Points - Symbolic Links ==========
[C:\Windows\system64] -> \systemroot\system32 -> Mount Point
< End of report >